Authentication > Integrate Azure AD
Authentication and SSO
Tallyfy provides free Single Sign-On (SSO) integration for all customers on paid plans, enabling smooth authentication through existing corporate identity systems and enterprise security frameworks.
SSO integration lets team members access Tallyfy using familiar company credentials from Microsoft Azure AD, Google Workspace, Okta, OneLogin, or other enterprise identity providers. This gets rid of separate password management burdens while seriously improving security through centralized authentication and access control.
For organizations that need maximum security compliance, paid plans include optional SSO-only enforcement settings that require exclusive authentication through designated identity providers, ensuring complete adherence to corporate security policies.
Strategic Benefit | Description |
---|---|
Better Security | Use your organization’s existing advanced security policies and multi-factor authentication for Tallyfy access |
Streamlined User Experience | Enable smooth login using familiar corporate usernames and passwords without additional credential management |
Centralized Access Control | Manage comprehensive Tallyfy access permissions directly from your primary identity management system |
Automated Account Provisioning | New users automatically get Tallyfy accounts upon first SSO login, getting rid of manual setup processes |
Consistent Security Policies | Enforce uniform authentication rules including password complexity and session management across all systems |
Less IT Support Burden | Get rid of “forgot Tallyfy password” support requests and streamline user account management |
For organizations that need the highest level of authentication control and security compliance, Tallyfy can be configured to enforce mandatory “SSO only” access. This configuration ensures that all organizational members, without exception, must authenticate exclusively through your designated Single Sign-On provider.
- Disabled Standard Authentication: Traditional email and password logins are completely disabled organization-wide.
- Identity Provider Provisioning: The ability to invite new members via email is turned off; all users must be provisioned through your corporate identity provider.
This complete enforcement ensures strict adherence to corporate authentication policies and regulatory compliance requirements. For detailed technical specifications and security implications, check our Compliance documentation on Mandatory Single Sign-On.
To enable “SSO only” mode for your organization, please contact Tallyfy support.
Once SSO integration is properly configured:
- Organizational Login Portal: Users access a customized Tallyfy login link specific to your organization.
- Identity Provider Redirect: Tallyfy automatically redirects users to your company’s designated login portal (such as Microsoft Azure AD or Google Workspace).
- Corporate Authentication: Users authenticate using their standard corporate credentials and any required multi-factor authentication.
- Seamless Return: Users are automatically redirected back to Tallyfy with authenticated access established.
- Automatic Account Provisioning: First-time users get automatically provisioned Tallyfy accounts based on identity provider attributes.

Tallyfy integrates seamlessly with leading enterprise identity management systems:
- Microsoft’s complete enterprise cloud identity and access management platform.
- Supports advanced security features including conditional access and multi-factor authentication.
- Google’s enterprise identity and productivity platform for organizations.
- Provides seamless integration with Google’s business application ecosystem.
Google Workspace Setup Guide →
- Leading cloud-based identity and access management service that specializes in enterprise SSO and application integration.
- Complete identity and access management platform providing secure SSO and application access control.
Tallyfy supports integration with virtually any enterprise identity system implementing the industry-standard SAML 2.0 protocol. Contact Tallyfy support for compatibility verification with your specific identity provider.
Setting up SSO integration needs coordinated technical configuration across both Tallyfy and your organization’s identity management system:
- Administrative Access: Personnel with admin privileges in both Tallyfy and your identity provider are needed.
- Technical Configuration Exchange: Critical technical details including URLs, security certificates, and metadata must be accurately configured between systems.
- User Attribute Mapping: Proper setup of user information transmission (including email, name, and role attributes) from your identity provider to Tallyfy.
- Complete Testing: Thorough testing across various user scenarios before organization-wide deployment.
- Identity Provider Selection: Choose the right setup guide for your organization’s identity management system.
- Tallyfy Support Engagement: Contact Tallyfy support or your dedicated account manager to start SSO configuration planning.
- Collaborative Implementation: Execute the configuration steps carefully in coordination with your IT team and identity management administrators.
- User Acceptance Testing: Do thorough testing of the authentication flow with representative users across different roles.
- Organization-wide Deployment: Tell your organization about the new authentication method and provide transition guidance.
Authentication > Integrate OneLogin
Authentication > Integrate Okta
Authentication > Integrate Google Suite
- 2025 Tallyfy, Inc.
- Privacy Policy
- Terms of Use
- Report Issue
- Trademarks